Missing User Warnings
Medium
- Confidence
- 97% confidence
- Finding
- The skill explicitly asks the user to provide a GitHub token and even suggests setting it via an environment variable, but it does not warn that the token is a sensitive credential, recommend least-privilege scopes, or instruct the user not to paste it into chat/output files. In an agent setting, this increases the risk of credential disclosure through conversation logs, terminal history, generated artifacts, or over-broad token use, especially because the skill may access private repository data.
